version 1.1.1.14, 2016/03/11 01:50:01 |
version 1.1.1.15, 2016/08/02 13:30:03 |
|
|
.\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF |
.\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF |
.\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |
.\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |
.\" |
.\" |
.\" $OpenBSD: ssh_config.5,v 1.228 2016/02/20 23:01:46 sobrado Exp $ |
.\" $OpenBSD: ssh_config.5,v 1.236 2016/07/22 07:00:46 djm Exp $ |
.Dd $Mdocdate: February 20 2016 $ |
.Dd $Mdocdate: July 22 2016 $ |
.Dt SSH_CONFIG 5 |
.Dt SSH_CONFIG 5 |
.Os |
.Os |
.Sh NAME |
.Sh NAME |
Line 952 This option is intended for situations w |
|
Line 952 This option is intended for situations w |
|
offers many different identities. |
offers many different identities. |
The default is |
The default is |
.Dq no . |
.Dq no . |
|
.It Cm IdentityAgent |
|
Specifies the |
|
.Ux Ns -domain |
|
socket used to communicate with the authentication agent. |
|
.Pp |
|
This option overrides the |
|
.Dq SSH_AUTH_SOCK |
|
environment variable and can be used to select a specific agent. |
|
Setting the socket name to |
|
.Dq none |
|
disables the use of an authentication agent. |
|
If the string |
|
.Dq SSH_AUTH_SOCK |
|
is specified, the location of the socket will be read from the |
|
.Ev SSH_AUTH_SOCK |
|
environment variable. |
|
.Pp |
|
The socket name may use the tilde |
|
syntax to refer to a user's home directory or one of the following |
|
escape characters: |
|
.Ql %d |
|
(local user's home directory), |
|
.Ql %u |
|
(local user name), |
|
.Ql %l |
|
(local host name), |
|
.Ql %h |
|
(remote host name) or |
|
.Ql %r |
|
(remote user name). |
.It Cm IdentityFile |
.It Cm IdentityFile |
Specifies a file from which the user's DSA, ECDSA, Ed25519 or RSA authentication |
Specifies a file from which the user's DSA, ECDSA, Ed25519 or RSA authentication |
identity is read. |
identity is read. |
Line 1019 It is recommended that |
|
Line 1049 It is recommended that |
|
.Cm IgnoreUnknown |
.Cm IgnoreUnknown |
be listed early in the configuration file as it will not be applied |
be listed early in the configuration file as it will not be applied |
to unknown options that appear before it. |
to unknown options that appear before it. |
|
.It Cm Include |
|
Include the specified configuration file(s). |
|
Multiple pathnames may be specified and each pathname may contain |
|
.Xr glob 3 |
|
wildcards and, for user configurations, shell-like |
|
.Dq ~ |
|
references to user home directories. |
|
Files without absolute paths are assumed to be in |
|
.Pa ~/.ssh |
|
if included in a user configuration file or |
|
.Pa /etc/ssh |
|
if included from the system configuration file. |
|
.Cm Include |
|
directive may appear inside a |
|
.Cm Match |
|
or |
|
.Cm Host |
|
block |
|
to perform conditional inclusion. |
.It Cm IPQoS |
.It Cm IPQoS |
Specifies the IPv4 type-of-service or DSCP class for connections. |
Specifies the IPv4 type-of-service or DSCP class for connections. |
Accepted values are |
Accepted values are |
Line 1309 For example, the following directive wou |
|
Line 1358 For example, the following directive wou |
|
.Bd -literal -offset 3n |
.Bd -literal -offset 3n |
ProxyCommand /usr/bin/nc -X connect -x 192.0.2.0:8080 %h %p |
ProxyCommand /usr/bin/nc -X connect -x 192.0.2.0:8080 %h %p |
.Ed |
.Ed |
|
.It Cm ProxyJump |
|
Specifies one or more jump proxies as |
|
.Xo |
|
.Sm off |
|
.Op Ar user No @ |
|
.Ar host |
|
.Op : Ns Ar port |
|
.Sm on |
|
.Xc . |
|
Multiple proxies may be separated by comma characters and will be visited |
|
sequentially. |
|
Setting this option will cause |
|
.Xr ssh 1 |
|
to connect to the target host by first making a |
|
.Xr ssh 1 |
|
connection to the specified |
|
.Cm ProxyJump |
|
host and then establishing a |
|
TCP forwarding to the ultimate target from there. |
|
.Pp |
|
Note that this option will compete with the |
|
.Cm ProxyCommand |
|
option - whichever is specified first will prevent later instances of the |
|
other from taking effect. |
.It Cm ProxyUseFdpass |
.It Cm ProxyUseFdpass |
Specifies that |
Specifies that |
.Cm ProxyCommand |
.Cm ProxyCommand |